2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-47257HIGH7.5Florent Thiéry has found that selected Axis devices were vulnerable to handling certain ethernet frames which could lead...
CVE-2024-36254HIGH7.5Out-of-bounds read vulnerability exists in Sharp Corporation and Toshiba Tec Corporation multiple MFPs (multifunction pr...
CVE-2024-36251HIGH7.5The web interface of the affected devices process some crafted HTTP requests improperly, leading to a device crash. More...
CVE-2024-36249HIGH7.4Cross-site scripting vulnerability exists in Sharp Corporation and Toshiba Tech Corporation multiple MFPs (multifunction...
CVE-2024-33605HIGH7.5Improper processing of some parameters of installed_emanual_list.html leads to a path traversal vulnerability. As for th...
CVE-2024-10781HIGH7.5The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to unauthorized Arbitrary Plugi...
CVE-2024-10570HIGH7.5The Security & Malware scan by CleanTalk plugin for WordPress is vulnerable to unauthorized SQL Injection due to an auth...
CVE-2024-10542HIGH7.5The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to unauthorized Arbitrary Plugi...
CVE-2024-49597HIGH7.2Dell Wyse Management Suite, versions WMS 4.4 and prior, contain an Improper Restriction of Excessive Authentication Atte...
CVE-2024-10729HIGH8.8The Booking & Appointment Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data...
CVE-2024-52899HIGH8.8IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject malicious JDBC URL para...
CVE-2024-53843HIGH8.1@dapperduckling/keycloak-connector-server is an opinionated series of libraries for Node.js applications and frontend cl...
CVE-2024-11674HIGH8.8A vulnerability, which was classified as critical, was found in CodeAstro Hospital Management System 1.0. Affected is an...
CVE-2024-53554HIGH8A Client-Side Template Injection (CSTI) vulnerability in the component /project/new/scrum of Taiga v 8.6.1 allows remote...
CVE-2024-53099HIGH7.1In the Linux kernel, the following vulnerability has been resolved: bpf: Check validity of link->type in bpf_link_show_...
CVE-2024-53098HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe/ufence: Prefetch ufence addr to catch bogus ...
CVE-2024-53096HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm: resolve faulty mmap_region() error path behavio...
CVE-2024-53268HIGH8.8Joplin is an open source, privacy-focused note taking app with sync capabilities for Windows, macOS, Linux, Android and ...
CVE-2024-52811HIGH8.2The ngtcp2 project is an effort to implement IETF QUIC protocol in C. In affected versions acks are not validated before...
CVE-2024-8272HIGH7.8The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to implement critical client va...
CVE-2024-7915HIGH7.8The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing an attacker to perform ...
CVE-2024-45756HIGH7.2An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before...
CVE-2024-45755HIGH7.2An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 2...
CVE-2024-27134HIGH7Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf. This behavior can be...
CVE-2024-11498HIGH7.5There exists a stack buffer overflow in libjxl. A specifically-crafted file can cause the JPEG XL decoder to use large a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now